The Document Foundation LibreOffice是The Document Foundation的办公套件。 The Document Foundation LibreOffice存在缓冲区错误漏洞,该漏洞源于导入电子表格文档中的修订变更时,对于重复使用的相同变更标识符,导入器会将一个变更对象视为不同且更大的类型,导致堆缓冲区溢出,从而可能写入超出分配内存区域。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| The Document Foundation | LibreOffice | 25.8< < 25.8.7 |
affected |
26.2< < 26.2.4 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| The Document Foundation | LibreOffice | 25.8 ~ < 25.8.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-6040 | 5.4 MEDIUM | Heap use-after-free in ODF number-format blank-width parsing |
| CVE-2026-6045 | 5.4 MEDIUM | Heap buffer overflow in EMF+ gradient brush import |
| CVE-2026-8357 | 5.4 MEDIUM | Heap buffer overflow in Calc formula compilation |
| CVE-2026-6039 | Heap buffer overflow in DXF polyline import | |
| CVE-2026-6047 | Heap buffer overflow in OOXML text box element import | |
| CVE-2026-8356 | Stack buffer overflow in PPT presentation import |
No comments yet